DSA-863-1 xine-lib -- format string vulnerability

Ulf Härnhammar from the Debian Security Audit Project discovered a
format string vulnerability in the CDDB processing component of
xine-lib, the xine video/media player library, that could lead to the
execution of arbitrary code caused by a malicious CDDB entry.

For the old stable distribution (woody) this problem has been fixed in
version 0.9.8-2woody4.

For the stable distribution (sarge) this problem has been fixed in
version 1.0.1-1sarge1.